{"id":"openSUSE-SU-2020:0893-1","summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\nChromium was updated to 83.0.4103.116 (boo#1173251):\n\n* CVE-2020-6509: Use after free in extensions\n\nChromium was updated to 83.0.4103.106 (boo#1173029):\n\n* CVE-2020-6505: Use after free in speech\n* CVE-2020-6506: Insufficient policy enforcement in WebView\n* CVE-2020-6507: Out of bounds write in V8\n\nOther fixes:\n\n- Add patch to work with new ffmpeg wrt boo#1173292:\n- Add multimedia fix for disabled location and also try one\n  additional patch from Debian on the same issue boo#1173107\n- Disable wayland integration on 15.x boo#1173187 boo#1173188\n  boo#1173254\n- Enforce to not use system borders boo#1173063\n\n","modified":"2026-03-11T07:32:33.056072Z","published":"2020-06-28T12:16:33Z","related":["CVE-2020-6505","CVE-2020-6506","CVE-2020-6507","CVE-2020-6509"],"upstream":["CVE-2020-6505","CVE-2020-6506","CVE-2020-6507","CVE-2020-6509"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/PJ7X57IWGLSUHYBIMARADLW7OWMGZ2JB/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173029"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173063"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173107"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173187"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173188"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173251"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173254"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173292"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6505"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6506"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6507"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6509"}],"affected":[{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.2","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"83.0.4103.116-lp152.2.3.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"83.0.4103.116-lp152.2.3.1","chromium":"83.0.4103.116-lp152.2.3.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2020:0893-1.json"}}],"schema_version":"1.7.5"}